# Klue, Kali365, OAuth: When the Front Door Is a Trusted Integration Page: https://stenobird.com/podcast/shadowtalk-powered-by-reliaquest-61547/klue-kali365-oauth-when-the-front-door-is-a-trusted-integration Text version: https://stenobird.com/podcast/shadowtalk-powered-by-reliaquest-61547/klue-kali365-oauth-when-the-front-door-is-a-trusted-integration.md Podcast: [ShadowTalk: Powered by ReliaQuest](https://stenobird.com/podcast/shadowtalk-powered-by-reliaquest-61547) Published: 2026-06-24T16:00:00+00:00 Episode link: https://www.buzzsprout.com/2154459/episodes/19397029-klue-kali365-oauth-when-the-front-door-is-a-trusted-integration.mp3 Audio file: https://www.buzzsprout.com/2154459/episodes/19397029-klue-kali365-oauth-when-the-front-door-is-a-trusted-integration.mp3 Processing state: not_requested JSON: https://stenobird.com/v1/public/podcasts/shadowtalk-powered-by-reliaquest-61547/episodes/klue-kali365-oauth-when-the-front-door-is-a-trusted-integration Duration seconds: 1688 ## Resource In the Klue compromises threat actors walked in through a trusted integration, using legitimate credentials to quietly siphon Salesforce CRM data at scale. The challenge isn't just responding to Klue. It's recognizing that every OAuth-connected integration in your environment is part of your attack surface. Join hosts Alexandra and John as they discuss: How compromised Klue integrations were leveraged to exfiltrate Salesforce CRM dataAttribution and what it signals about the evolving data ext... ## Actions - request_transcript: `POST https://stenobird.com/v1/public/podcasts/shadowtalk-powered-by-reliaquest-61547/episodes/klue-kali365-oauth-when-the-front-door-is-a-trusted-integration/transcription-requests` — Idempotently request low-priority transcript generation for this episode. - read_markdown: `GET https://stenobird.com/podcast/shadowtalk-powered-by-reliaquest-61547/klue-kali365-oauth-when-the-front-door-is-a-trusted-integration.md` — Read the agent-friendly Markdown representation of this episode resource. A page view does not enqueue transcription. Agents should invoke `request_transcript` explicitly when they need this episode processed. ## Transcript Full transcripts are not published on public pages unless there is a clear rights basis.